The Experts below are selected from a list of 9 Experts worldwide ranked by ideXlab platform

Thomas Wilhelm - One of the best experts on this subject based on the ideXlab platform.

  • CHAPTER 13 – Maintaining Access
    Professional Penetration Testing, 2010
    Co-Authors: Thomas Wilhelm
    Abstract:

    Publisher Summary During a penetration test (PenTest), once access has been achieved on a target system, penetration testers need to maintain that access. This chapter discusses methods and tools used by testers to maintain constant access to their target network. The use of backdoors is very common in a penetration test. Backdoors can slip past defense obstacles, such as firewalls or access control lists, giving the professional penetration unfettered access to the compromised system. Backdoors can also speed up access to a server. The Open Source tool netcat is an effective application that can be used to create communication channels between two systems. With a little scripting, netcat can be used to create a reverse shell that will connect back to our attack system at any interval of time. The disadvantage to using netcat is all communication between attack server and the victim is sent in cleartext, which could be identified and terminated by an intrusion prevention system. To avoid detection, another mode of communication is used—encrypted tunnels. An Open Secure Shell (SSH) allows malware and additional exploits to be placed onto the victim system without being seen by network detection systems, because all the traffic between the attack system and the victim is encrypted. SSH tunnel can be configured as a direct or reverse shell depending on the accessibility of the target server by the attack system. A few other tunnel applications exist that use different types of encryption, including Cryptcat, Matahari, Proxytunnel, Socat, and Stunnel.

Patrick Engebretson - One of the best experts on this subject based on the ideXlab platform.

  • Maintaining Access with Backdoors and Rootkits
    The Basics of Hacking and Penetration Testing, 2011
    Co-Authors: Patrick Engebretson
    Abstract:

    Many exploits that provide remote access are fleeting. Often, the access to the system lasts only as long as the parent process is running or until the system is rebooted. In most cases, a penetration tester needs the ability to return to the system at a later date. In these cases, once the system has been compromised, a more permanent and stable backdoor is added to the system. This chapter introduces the powerful and flexible tool Netcat. Several uses of Netcat, including implementing Netcat as a backdoor, are covered. Cryptcat, a modern version of Netcat with the added ability to encrypt traffic between two machines, is also discussed. The classic remote control program Netbus is introduced to demonstrate the power of “command and control” software. The chapter concludes with a brief overview of rootkits and explores their basic structure and use. The proper use, configuration, and implementation of the Hacker Defender rootkit is covered.

David Cowen - One of the best experts on this subject based on the ideXlab platform.

  • Anti-Hacker Tool Kit, Third Edition
    2006
    Co-Authors: Mike Shema, Chris Davis, Aaron Philipp, David Cowen
    Abstract:

    Stop hackers in their tracks Organized by category, Anti-Hacker Tool Kit, Third Edition provides complete details on the latest and most critical security tools, explains their function, and demonstrates how to configure them to get the best results. Completely revised to include the latest security tools, including wireless tools New tips on how to configure the recent tools on Linux, Windows, and Mac OSX New on the CD-ROM -- Gnoppix, a complete Linux system, ClamAV anti-virus, Cain, a multi-function hacking tool, Bluetooth tools, protocol scanners, forensic tools, and more New case studies in each chapter Table of contents Acknowledgments Introduction Part I: Multifunctional Tools Chapter 1: Netcat and Cryptcat Chapter 2: The X Window System Chapter 3: Virtual Machines & Emulators Part II: Tools for Auditing and Defending the Hosts Chapter 4: Port Scanners Chapter 5: Unix Enumeration Tools Chapter 6: Windows Enumeration Tools Chapter 7: Web Hacking Tools Chapter 8: Password Cracking / Brute-Force Tools Chapter 9: Host Hardening Chapter 10: Backdoors and Remote Access Tools Chapter 11: Simple Source Auditing Tools Chapter 12: Combination System Auditing Tools Part III: Tools for Auditing and Defending Your Network Chapter 13: Firewalls Chapter 14: Network Reconnaissance Tools Chapter 15: Port Redirection Chapter 16: Sniffers Chapter 17: Wireless Tools Chapter 18: War Dialers Chapter 19: TCP/IP Stack Tools Part IV: Tools for Computer Forensics and Incident Response Chapter 20: Creating a Bootable Environment and Live Response Tool Kit Chapter 21: Commercial Forensic Image Tool Kits Chapter 22: Open-Source Forensic Duplication Tool Kits Chapter 23: Tool Kits to Aid in Forensic Analysis Chapter 24: Tools to Aid in Internet Activity Reconstruction Chapter 25: Generalized Editors and Viewers Part V: Appendixes Appendix A: Useful Charts and Diagrams Appendix B: Command-line Reference Index

Mike Shema - One of the best experts on this subject based on the ideXlab platform.

  • Anti-Hacker Tool Kit, Third Edition
    2006
    Co-Authors: Mike Shema, Chris Davis, Aaron Philipp, David Cowen
    Abstract:

    Stop hackers in their tracks Organized by category, Anti-Hacker Tool Kit, Third Edition provides complete details on the latest and most critical security tools, explains their function, and demonstrates how to configure them to get the best results. Completely revised to include the latest security tools, including wireless tools New tips on how to configure the recent tools on Linux, Windows, and Mac OSX New on the CD-ROM -- Gnoppix, a complete Linux system, ClamAV anti-virus, Cain, a multi-function hacking tool, Bluetooth tools, protocol scanners, forensic tools, and more New case studies in each chapter Table of contents Acknowledgments Introduction Part I: Multifunctional Tools Chapter 1: Netcat and Cryptcat Chapter 2: The X Window System Chapter 3: Virtual Machines & Emulators Part II: Tools for Auditing and Defending the Hosts Chapter 4: Port Scanners Chapter 5: Unix Enumeration Tools Chapter 6: Windows Enumeration Tools Chapter 7: Web Hacking Tools Chapter 8: Password Cracking / Brute-Force Tools Chapter 9: Host Hardening Chapter 10: Backdoors and Remote Access Tools Chapter 11: Simple Source Auditing Tools Chapter 12: Combination System Auditing Tools Part III: Tools for Auditing and Defending Your Network Chapter 13: Firewalls Chapter 14: Network Reconnaissance Tools Chapter 15: Port Redirection Chapter 16: Sniffers Chapter 17: Wireless Tools Chapter 18: War Dialers Chapter 19: TCP/IP Stack Tools Part IV: Tools for Computer Forensics and Incident Response Chapter 20: Creating a Bootable Environment and Live Response Tool Kit Chapter 21: Commercial Forensic Image Tool Kits Chapter 22: Open-Source Forensic Duplication Tool Kits Chapter 23: Tool Kits to Aid in Forensic Analysis Chapter 24: Tools to Aid in Internet Activity Reconstruction Chapter 25: Generalized Editors and Viewers Part V: Appendixes Appendix A: Useful Charts and Diagrams Appendix B: Command-line Reference Index

Chris Davis - One of the best experts on this subject based on the ideXlab platform.

  • Anti-Hacker Tool Kit, Third Edition
    2006
    Co-Authors: Mike Shema, Chris Davis, Aaron Philipp, David Cowen
    Abstract:

    Stop hackers in their tracks Organized by category, Anti-Hacker Tool Kit, Third Edition provides complete details on the latest and most critical security tools, explains their function, and demonstrates how to configure them to get the best results. Completely revised to include the latest security tools, including wireless tools New tips on how to configure the recent tools on Linux, Windows, and Mac OSX New on the CD-ROM -- Gnoppix, a complete Linux system, ClamAV anti-virus, Cain, a multi-function hacking tool, Bluetooth tools, protocol scanners, forensic tools, and more New case studies in each chapter Table of contents Acknowledgments Introduction Part I: Multifunctional Tools Chapter 1: Netcat and Cryptcat Chapter 2: The X Window System Chapter 3: Virtual Machines & Emulators Part II: Tools for Auditing and Defending the Hosts Chapter 4: Port Scanners Chapter 5: Unix Enumeration Tools Chapter 6: Windows Enumeration Tools Chapter 7: Web Hacking Tools Chapter 8: Password Cracking / Brute-Force Tools Chapter 9: Host Hardening Chapter 10: Backdoors and Remote Access Tools Chapter 11: Simple Source Auditing Tools Chapter 12: Combination System Auditing Tools Part III: Tools for Auditing and Defending Your Network Chapter 13: Firewalls Chapter 14: Network Reconnaissance Tools Chapter 15: Port Redirection Chapter 16: Sniffers Chapter 17: Wireless Tools Chapter 18: War Dialers Chapter 19: TCP/IP Stack Tools Part IV: Tools for Computer Forensics and Incident Response Chapter 20: Creating a Bootable Environment and Live Response Tool Kit Chapter 21: Commercial Forensic Image Tool Kits Chapter 22: Open-Source Forensic Duplication Tool Kits Chapter 23: Tool Kits to Aid in Forensic Analysis Chapter 24: Tools to Aid in Internet Activity Reconstruction Chapter 25: Generalized Editors and Viewers Part V: Appendixes Appendix A: Useful Charts and Diagrams Appendix B: Command-line Reference Index